Medium severity5.9NVD Advisory· Published Jun 16, 2021· Updated Jun 17, 2026
CVE-2021-31857
CVE-2021-31857
Description
In Zoho ManageEngine Password Manager Pro before 11.1 build 11104, attackers are able to retrieve credentials via a browser extension for non-website resource types.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:zohocorp:manageengine_password_manager_pro:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:zohocorp:manageengine_password_manager_pro:*:*:*:*:*:*:*:*range: <11.1
- cpe:2.3:a:zohocorp:manageengine_password_manager_pro:11.1:-:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_password_manager_pro:11.1:build_11101:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_password_manager_pro:11.1:build_11102:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_password_manager_pro:11.1:build_11103:*:*:*:*:*:*
- Zoho ManageEngine/Password Manager Prodescription
- Range: <11.1 build 11104
Patches
Vulnerability mechanics
References
2- www.manageengine.comnvdVendor Advisory
- www.manageengine.com/products/passwordmanagerpro/release-notes.htmlnvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.